CVE-1999-0239

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Jan 1, 1998
Updated: Nov 20, 2024
CWE ID 178

Summary

CVE-1999-0239 is a vulnerability affecting Netscape FastTrack Web servers. When a lowercase "get" command is used instead of the standard uppercase GET request, the server will inadvertently disclose a list of files in the current directory. This issue can potentially allow unauthorized users to gain valuable information about the server's file structure. An attacker could exploit this vulnerability to conduct further reconnaissance or even attempt file inclusion attacks. To mitigate this risk, it is essential to ensure that all Web servers are configured correctly and that users are educated on proper usage of command casing.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Netscape FastTrack

Affected Vendors

  • Netscape